CVE-2018-6179: Debian Linux
Medium severity, CVSS 6.5. EPSS: 1.2% chance of exploitation in the next 30 days.
Insufficient enforcement of file access permission in the activeTab case in Extensions in Google Chrome prior to 68.0.3440.75 allowed an attacker who convinced a user to install a malicious extension to access files on the local file system via a crafted Chrome Extension.
Affected products
- Debian Debian Linux: version 9.0 only
- Google Chrome: before 68.0.3440.75 (fixed in 68.0.3440.75)
- Red Hat Enterprise Linux Desktop: version 6.0 only
- Red Hat Enterprise Linux Server: version 6.0 only
- Red Hat Enterprise Linux Workstation: version 6.0 only
Published 2019-01-09. Last modified 2026-06-17.